Be straight with people. Bring evidence. Assume the other person read the thing and reached a different conclusion for a reason.
This project is about checks that can fail, and the same applies to conversation here: a claim about someone's work should carry the command or the file and line that supports it, the same way a claim about the code does. "This is wrong" is not a review. "This is wrong, here is the run that shows it" is.
Harassment, personal attacks, or sustained disruption. Publishing anyone's private information. Sexualised language or imagery. Dismissing a contributor rather than their argument.
Reporting a defect in this project is never harassment, however blunt. Finding a check here that measures nothing is the most useful thing you can do, and the project keeps a public record of the eighteen found so far.
Issues, pull requests, discussions, commit messages, and any space where you are representing this project.
Report to vedant@simulacrum.world, or privately through GitHub's security advisory form if the report itself is sensitive. Reports are read by the maintainer and not shared further without the reporter's agreement.
Responses run from a request to edit a comment, through a temporary ban, to a permanent one. What happens depends on severity and on whether it is repeated, and the reasoning will be stated rather than left implied.
Adapted from the Contributor Covenant 2.1.